三度出手:TeamPCP 木马化 LiteLLM,攻击行动仍在继续
wiz.io | 博客 | #cloud | #supply-chain | #malware | #credential-theft | #pypi | #litellm | #persistence | #teampcp
摘要
TeamPCP 投毒 LiteLLM 的 PyPI 版本 1.82.7/1.82.8:滥用 Python .pth 机制在解释器启动时执行双层 base64 载荷,窃取并外传云凭证与 CI/CD 机密;1.82.8 会在任何 Python 进程中被触发,隐蔽且持久。
- 发布时间
- 收录时间
Skip to content